Description: netfilter: nf_tables: skip immediate deactivate in _PREPARE_ERROR References: https://ubuntu.com/security/CVE-2023-4015 https://patchwork.ozlabs.org/project/netfilter-devel/patch/20230723142446.13809-1-pablo@netfilter.org/ Notes: carnil> Commit fixes 4bedf9eee016 ("netfilter: nf_tables: fix chain carnil> binding transaction logic") in 6.4 (but backported to 5.10.188, carnil> 6.1.36, 6.3.10). Bugs: upstream: released (6.5-rc4) [0a771f7b266b02d262900c75f1e175c7fe76fec2] 6.1-upstream-stable: released (6.1.43) [4237462a073e24f71c700f3e5929f07b6ee1bcaa] 5.10-upstream-stable: released (5.10.190) [ab5a97a94b57324df76d659686ac2d30494170e6] 4.19-upstream-stable: N/A "Vulnerable code not present" sid: released (6.4.11-1) 6.1-bookworm-security: released (6.1.52-1) 5.10-bullseye-security: N/A "Vulnerable code not in a Debian released version" 4.19-buster-security: N/A "Vulnerable code not present"